Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Your Password Can Probably be Cracked Faster Than You’d Think

Your Password Can Probably be Cracked Faster Than You’d Think

Whether you’re talking about identity theft, data breaches, or any other form of cybercrime, one of the leading causes of successful cyberattacks is the use of insufficiently secure passwords. Just how easy is it for someone to bypass such a password? Let’s consider the facts.

How to Crack a Password

Cybercriminals come correct, first of all. Not only do many of them have access to some pretty sophisticated tools and resources, they go about their selfish and deceitful activities with a strategy based on the average user’s online conduct.

For the cybercriminal, bypassing a password is really a numbers game. Chances are good that, if they try some commonly used passwords, a cybercriminal will eventually hit pay dirt. For instance, a cybercriminal’s first guesses could look like the following:

  • 123456789
  • guest
  • qwerty
  • password
  • a1b2c3

Since these are some of the world’s most common passwords—with an estimated 10 to 20% of accounts using a similar password—trying different variations of them or adding one or two symbols gives a cybercriminal a pretty good chance of getting in.

If we imagine ourselves to be cybercriminals, this knowledge helps to simplify our process immensely. If we invest in a password cracking tool, which effectively just tries every dictionary word and randomized combination of characters, increasing in length as it goes, chances are good that we will ultimately get in.

It’s just like trying to guess a combination lock number. While it’s going to take some time, you could try every possible combination—1-1-1, 1-1-2, 1-1-3—until you either get it, or the bike’s owner is back and not-so-politely asking you to step away from their property. 

The more variables there are to try, the more possible options there are—increasing at exponential rates, making it impossible to manually try every single combination. A computer, on the other hand, could try…and much, much faster. That’s how a password-cracking tool operates.

How Long Before a Password is Cracked?

It all depends on the password. Many of the tools that these cybercriminals will use will try the usual suspects first, and will therefore crack the password immediately. The shorter, weaker passwords can take fractions of a second, with these tools testing millions of potential credentials in that time.

It also depends on the hardware the cybercriminal is using, as a more powerful system will allow the attacker to test potential passwords that much faster. Let’s go over how speedily a reasonably powerful laptop could crack a password, based on how long the password is, and how complicated it is:

As pictured, weak—or short and simple passwords—would fold immediately, holding out for a few seconds or minutes at best. However, once a password is designed to be longer and more complex, the likelihood of a password being cracked within someone’s lifetime becomes far smaller…arguably impossible.

That is, however, assuming that your password’s length and complexity aren’t wholly reliant on a combination of otherwise common (and therefore, insecure) words or phrases. Sure, “!password12345” may seem to meet some of the basic requirements for a password—and based on the password chart above, should take a million years to figure out—the use of common password trends makes it far easier to figure out.

This is precisely why we always advocate for more stringent password practices to ensure each and every one is sufficiently secure. These practices include the aforementioned length and complexity requirements, and avoiding things that could be guessed somewhat easily, including pet names, birthdays, and other common factors. Of course, passwords should never be used more than once, as in, you need a separate password for each account you’re securing.

It is also important to keep in mind that the results generated above could be accomplished using resources that are out there and available, using a basic tool on a common laptop. An invested cybercriminal very well could have additional resources at their disposal, things like botnets and significant cloud resources, along with the hardware needed to power through a brute force attempt much faster than our hypothetical mid-range laptop could.

The big takeaway: ALWAYS use strong and secure passwords.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Sunday, 14 September 2025

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Business Computing Data Business Productivity Software Innovation Hackers Cloud Network Security User Tips Hardware Efficiency Internet Malware IT Support Privacy Google Computer Email Workplace Tips Phishing IT Services Hosted Solutions Collaboration Users Workplace Strategy Ransomware Mobile Device Microsoft Small Business Quick Tips Backup Cybersecurity Passwords Saving Money Communication Data Backup Smartphone Managed Service Android Business Management VoIP Smartphones Productivity Upgrade Mobile Devices communications Disaster Recovery Data Recovery Browser Social Media Windows Managed IT Services Microsoft Office AI Current Events Remote Network Tech Term Internet of Things Artificial Intelligence Facebook Automation Cloud Computing Information Covid-19 Miscellaneous Gadgets Holiday Remote Work Training Server Managed Service Provider Outsourced IT Encryption Employee/Employer Relationship Spam Compliance Windows 10 Office Data Management Business Continuity Government IT Support Windows 10 Bandwidth Blockchain Virtualization Business Technology Wi-Fi Data Security Vendor Apps Two-factor Authentication Mobile Office Chrome Gmail Budget Apple BYOD App Employer-Employee Relationship Managed Services Voice over Internet Protocol Mobile Device Management Networking How To BDR WiFi HIPAA Applications Access Control Computing Hacker Tip of the week Information Technology Conferencing Avoiding Downtime Marketing Office 365 Augmented Reality Storage Password Bring Your Own Device Big Data Router Virtual Private Network Health 2FA Operating System Help Desk Computers Risk Management Retail Website Healthcare Office Tips Analytics Managed IT Services Firewall Cooperation Free Resource Project Management Windows 7 Patch Management Save Money Microsoft 365 The Internet of Things Remote Monitoring End of Support Vulnerability Vendor Management Solutions Social Physical Security Display Printer Going Green Paperless Office Windows 11 Infrastructure Customer Service Monitoring Cybercrime Excel Document Management Remote Workers Telephone Scam Data loss Money Data Privacy Humor Images 101 Multi-Factor Authentication Robot Mobility Safety Telephone System Cost Management Sports Mouse IT Management Administration Meetings VPN Employees Integration Modem User Tip Processor Computer Repair Mobile Security Customer Relationship Management Holidays Settings Printing Wireless Content Filtering Data Storage Hacking Smart Technology Supply Chain Presentation Video Conferencing YouTube Machine Learning Managed Services Provider Cryptocurrency Virtual Machines Professional Services Saving Time Wireless Technology Managed IT Service Maintenance Virtual Desktop Downloads Data storage Antivirus LiFi iPhone Word Licensing Outlook Entertainment Vulnerabilities Public Speaking Trends Supply Chain Management Alert File Sharing Regulations Dark Data Google Calendar Term Google Apps Lithium-ion battery Managed IT Customer Resource management FinTech Data Analysis Hacks Star Wars IT Assessment Entrepreneur Scary Stories How To Microsoft Excel IT Maintenance Gamification Flexibility Notifications Staff Value Business Intelligence Fun Deep Learning Travel Social Networking Legislation Shortcuts Organization Techology Fileless Malware Digital Security Cameras Undo Google Maps Smart Devices Ransmoware Content Remote Working Education Wearable Technology Memory Vendors Unified Threat Management Motherboard Data Breach Comparison Google Play Be Proactive Health IT Unified Threat Management Directions Videos Mobile Computing Assessment Electronic Health Records Permissions Workforce Search Wasting Time Threats Application Best Practice Trend Micro Network Congestion Specifications Security Cameras Workplace Strategies User Error Microchip Internet Exlporer Software as a Service Buisness Fraud Meta IBM Legal Username IT solutions Managing Costs Amazon Business Growth Point of Sale eCommerce Black Friday SSID Database Surveillance Virtual Assistant Outsource IT Cortana Media Network Management Tech Support IT Technicians Virtual Machine Environment Alt Codes Cookies Monitors Cyber Monday Medical IT Proxy Server Reviews Competition Tactics Development Downtime Hotspot Transportation Small Businesses Hosted Solution Websites Mirgation Hypervisor Displays Typing Nanotechnology Optimization PowerPoint Shopping SharePoint Addiction Electronic Medical Records Language Employer/Employee Relationships Outsourcing Knowledge Navigation Google Drive Management PCI DSS User Chatbots Screen Reader Writing Distributed Denial of Service Workplace Lenovo Gig Economy Service Level Agreement Internet Service Provider Virtual Reality Computing Infrastructure Teamwork Hiring/Firing 5G Experience Evernote Paperless IP Address Google Docs Server Management Regulations Compliance Unified Communications Private Cloud Identity Bitcoin Identity Theft Smart Tech Memes Running Cable Co-managed IT Superfish Bookmark Google Wallet Download Net Neutrality Twitter Alerts SQL Server Technology Care Business Communications Financial Data Recovery Error History Browsers Smartwatch Hard Drives Windows 8 Connectivity IT Laptop Social Engineering Break Fix Scams Domains Drones Upload Procurement Remote Computing Azure Hybrid Work Cyber security Multi-Factor Security Tech Human Resources Social Network Telework CES Refrigeration Tablet IoT Communitications Halloween Dark Web Cables

Blog Archive